Identity & Access Management (IAM) Engineer

Acrisure LLC
Atlanta, GA, United States
9 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Active Directory Application Programming Interfaces (APIs) Amazon Web Services Bash Shell Software as a Service Cloud Engineering Cyber Security Multi-Factor Authentication Identity and Access Management Intrusion Detection and Prevention Python (Programming Language) Lightweight Directory Access Protocols (LDAP)
+15 more
OAuth Windows PowerShell Openid Connect Azure Active Directory Ansible Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Systems Integration Policy as Code Cyberark Customer Identity Access Management Infrastructure Automation Frameworks SailPoint Terraform

Job description

We are seeking an experienced Identity and Access Management Engineer to join our IAM initiatives within the Zero Trust Security framework. The ideal candidate will have a strong understanding of IAM principles, identity governance, automation, and access controls. This role requires hands-on experience with Privilege Access Management (PAM) solutions, Identity Governance and Administration (IGA) platforms, and scripting/automation for process efficiency and security enhancements., * Design, implement, and support IAM solutions with a focus on CIAM, PAM and IGA.

  • Deploy and manage PAM tools (e.g., Delinea, CyberArk, BeyondTrust,) to control and monitor privileged access.
  • Configure and build custom integration for IGA platforms (e.g., Veza, SailPoint, Saviynt) for lifecycle management, access reviews, and role-based access controls.
  • Develop automation using PowerShell, Python, or Bash to streamline provisioning, de-provisioning, access reviews, and compliance reporting.
  • Integrate IAM systems with HR, ITSM, directory services (e.g., Active Directory, LDAP), and cloud platforms (e.g., AWS, Azure AD).
  • Implement identity federation and SSO using SAML, OAuth 2.0, OpenID Connect, and SCIM for seamless access across hybrid and SaaS environments.
  • Manage and secure non-human identities, including service accounts, API keys, and machine identities.
  • Automate IAM infrastructure using Infrastructure as Code (IaC) tools such as Terraform, Ansible, or CI/CD pipelines.
  • Leverage Policy-as-Code frameworks (e.g., Open Policy Agent) to enforce consistent access control policies.
  • Collaborate with Security Operations to enable Identity Threat Detection and Response (ITDR) and monitor anomalous identity behaviors.

Requirements

  • Strong knowledge of Zero Trust security principles and frameworks.
  • Hands on experience with IAM technologies (e.g., Identity Governance, Single Sign-On, Multi-Factor Authentication, PAM, etc).
  • Proficient in scripting languages such as PowerShell, Python, or Bash for automation tasks.
  • Familiarity with cloud-native IAM services such as AWS IAM, Azure AD/Entra ID, GCP IAM, and SaaS identity integrations.
  • Excellent communication skills, with the ability to articulate complex security concepts to both technical and non-technical stakeholders.

Education and Experience:

  • 3-7 years of hands-on experience in Identity and Access Management
  • Experience with compliance standards such as NYDFS, HIPAA, or NIST.

LI-CH1

Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.

Benefits & conditions

  • Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
  • Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
  • Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
  • Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
  • … and so much more!

About the company

About Acrisure

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services - and more.

In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible., At Acrisure, we’re building more than a business, we’re building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children’s Hospital in Grand Rapids, Michigan, UPMC Children’s Hospital in Pittsburgh, Pennsylvania and Blythedale Children’s Hospital in Valhalla, New York.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

3:39 min

Streamlining application deployment with agentless Ansible

Goetz Rieger Goetz Rieger · World Congress 2025

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all